You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: modules/osd-release-notes-Q4-2025.adoc
+6-1Lines changed: 6 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -3,7 +3,12 @@
3
3
4
4
:_mod-docs-content-type: REFERENCE
5
5
[id="osd-q4-2025_{context}"]
6
-
=== Q4 2025
6
+
= Q4 2025
7
+
8
+
* **Required API services table updated.**
9
+
The _Required API services_ table within the _Required Customer Procedure_ guide has been updated to re-include APIs that were previously removed due to a bug. These APIs are required for new {product-title} on {GCP} cluster creation. For more information, see link:https://docs.redhat.com/en/documentation/openshift_dedicated/4/html/planning_your_environment/gcp-ccs#ccs-gcp-customer-procedure_gcp-ccs[Required customer procedure].
7
10
8
11
* **New version of {product-title} available.**{product-title} on {gcp} and {product-title} on {aws} versions 4.20 are now available for new clusters.
9
12
13
+
* **Extended Update Support (EUS) channel group now available.**
14
+
You can now select the EUS channel group when creating or editing your {product-title} cluster. The EUS channel group allows you to extend the life cycle of your even-numbered version {product-title} cluster, giving you additional time to plan and budget for future upgrades as well as providing continued security patches and critical bug fixes. For additional information, see link:https://docs.redhat.com/en/documentation/openshift_dedicated/4/html/introduction_to_openshift_dedicated/policies-and-service-definition#sd-life-cycle-dates_osd-life-cycle[Life cycle dates].
With its foundation in Kubernetes, {product-title} is a complete {OCP} cluster provided as a cloud service, configured for high availability, and dedicated to a single customer.
10
11
11
-
{product-title} is professionally managed by RedHat and hosted on {GCP} or {AWS}. Each {product-title} cluster includes a fully managed link:https://access.redhat.com/documentation/en-us/openshift_container_platform/{ocp-version}/html/architecture/control-plane[control plane] (Control and Infrastructure nodes), application nodes, installation and management by RedHat Site Reliability Engineers (SRE), premium RedHat Support, and cluster services such as logging, metrics, monitoring, notifications portal, and a cluster portal.
12
+
{product-title} is professionally managed by Red{nbsp}Hat and hosted on {GCP} or {AWS}. Each {product-title} cluster includes a fully managed link:https://access.redhat.com/documentation/en-us/openshift_container_platform/{ocp-version}/html/architecture/control-plane[control plane] (Control and Infrastructure nodes), application nodes, installation and management by Red{nbsp}Hat Site Reliability Engineers (SRE), premium Red{nbsp}Hat Support, and cluster services such as logging, metrics, monitoring, notifications portal, and a cluster portal.
12
13
13
-
{product-title} clusters are available on the link:https://console.redhat.com/openshift[Hybrid Cloud Console]. With the RedHat {cluster-manager} application, you can deploy {product-title} clusters to either on-premise or cloud environments.
14
+
{product-title} clusters are available on the link:https://console.redhat.com/openshift[Hybrid Cloud Console]. With the Red{nbsp}Hat {cluster-manager} application, you can deploy {product-title} clusters to either on-premise or cloud environments.
14
15
15
-
[id="osd-new-changes-and-updates_{context}"]
16
-
== New changes and updates
17
-
18
-
[id="osd-q4-2025_{context}"]
19
-
=== Q4 2025
20
-
21
-
* **Extended Update Support (EUS) channel group now available.**
22
-
You can now select the EUS channel group when creating or editing your {product-title} cluster. The EUS channel group allows you to extend the life cycle of your even-numbered version {product-title} cluster, giving you additional time to plan and budget for future upgrades as well as providing continued security patches and critical bug fixes. For additional information, see link:https://docs.redhat.com/en/documentation/openshift_dedicated/4/html/introduction_to_openshift_dedicated/policies-and-service-definition#sd-life-cycle-dates_osd-life-cycle[Life cycle dates].
16
+
Find new additions, recent changes, and relevant updates for {product-title} listed below in quarterly increments.
* **Updates to Workload Identity Federation (WIF) permissions and roles.**
29
24
The default IAM permissions for WIF in the link:https://github.com/openshift/managed-cluster-config/blob/master/resources/wif/4.19/vanilla.yaml[managed-cluster-config] template have been updated. This means newly created WIF configurations will have fewer, less overly permissive permissions by default.
@@ -40,9 +35,8 @@ In alignment with the principle of least privilege as well as {gcp-full}'s prefe
40
35
* **Support for managing workload identity pools and providers in a dedicated {GCP} project.**
41
36
{product-title} on {GCP} now supports the option of creating and managing workload identity pools and providers in a specified dedicated project during the creation of a WIF configuration. Red{nbsp}Hat plans on offering this option for existing WIF configurations in an upcoming release. For more information, see xref:../osd_gcp_clusters/creating-a-gcp-cluster-with-workload-identity-federation.adoc#create-wif-configuration_osd-creating-a-cluster-on-gcp-with-workload-identity-federation[Creating a WIF configuration].
42
37
43
-
44
-
45
-
=== Q2 2025
38
+
[id="osd-q2-2025_{context}"]
39
+
== Q2 2025
46
40
47
41
// * **{product-title} SDN network plugin blocks future major upgrades**
48
42
* **Updated version requirements for migration from OpenShift SDN to OVN-Kubernetes.**
@@ -58,7 +52,7 @@ For more information about migrating to OVN-Kubernetes, see xref:../networking/o
58
52
{product-title} on {GCP} users can now enable or disable Secure Boot for Shielded VMs on a per machine basis. For more information, see xref:../osd_cluster_admin/osd_nodes/osd-managing-worker-nodes.adoc#osd-managing-worker-nodes[Managing compute nodes].
59
53
60
54
[id="osd-q1-2025_{context}"]
61
-
=== Q1 2025
55
+
== Q1 2025
62
56
63
57
* **Support for new {gcp-short} instances.** {product-title} version 4.18 and later now supports `n4` and `c3` instance types on {gcp-full}. For more information, see xref:../osd_architecture/osd_policy/osd-service-definition.adoc#gcp-compute-types_osd-service-definition[{gcp-full} compute types].
64
58
@@ -81,7 +75,7 @@ For more information about migrating to OVN-Kubernetes, see xref:../networking/o
81
75
* **Red{nbsp}Hat SRE log-based alerting endpoints have been updated.** {product-title} customers who are using a firewall to control egress traffic can now remove all references to `*.osdsecuritylogs.splunkcloud.com:9997` from your firewall allowlist. {product-title} clusters still require the `http-inputs-osdsecuritylogs.splunkcloud.com:443` log-based alerting endpoint to be accessible from the cluster.
82
76
83
77
[id="osd-q4-2024_{context}"]
84
-
=== Q4 2024
78
+
== Q4 2024
85
79
86
80
* **Workload Identity Federation (WIF) authentication type is now available.** {product-title} on {gcp-first} customers can now use WIF as an authentication type when creating a cluster. WIF is a {gcp-short} Identity and Access Management (IAM) feature that provides third parties a secure method to access resources on a customer's cloud account.
87
81
WIF is {gcp-full}'s preferred method for credential authentication.
@@ -99,7 +93,7 @@ For more information, see xref:../osd_gcp_clusters/creating-a-gcp-psc-enabled-p
99
93
100
94
101
95
[id="osd-q3-2024_{context}"]
102
-
=== Q3 2024
96
+
== Q3 2024
103
97
104
98
* ** Support for {gcp-short} A2 instance types with A100 80GB GPUs.** {product-title} on {GCP} now supports A2 instance types with A100 80GB GPUs. These instance types meet the specific requirements listed by IBM Watsonx.ai. For more information, see xref:../osd_architecture/osd_policy/osd-service-definition.adoc#gcp-compute-types_osd-service-definition[{gcp-full} compute types].
105
99
@@ -122,7 +116,7 @@ For more information, see xref:../osd_planning/osd-limits-scalability.adoc#contr
122
116
For more information about region availabilities, see xref:../osd_architecture/osd_policy/osd-service-definition.adoc#regions-availability-zones_osd-service-definition[Regions and availability zones].
123
117
124
118
[id="osd-q2-2024_{context}"]
125
-
=== Q2 2024
119
+
== Q2 2024
126
120
127
121
* **Cluster delete protection.** {product-title} on {GCP} users can now enable the cluster delete protection option, which helps to prevent users from accidentally deleting a cluster.
128
122
//Removed link as is no longer valid. Need to decide if we need a link here and if so, what it will be.
@@ -133,14 +127,14 @@ For more information about region availabilities, see xref:../osd_architecture/o
133
127
* **Support for new {gcp-short} instances.** {product-title} now supports more worker node types and sizes on {gcp-full}. For more information, see xref:../osd_architecture/osd_policy/osd-service-definition.adoc#gcp-compute-types_osd-service-definition[{gcp-full} compute types].
134
128
135
129
[id="osd-q1-2024_{context}"]
136
-
=== Q1 2024
130
+
== Q1 2024
137
131
138
132
* **{product-title} regions added.** {product-title} on {GCP} is now available in the Delhi, India (`asia-south2`) region. For more information on region availabilities, see xref:../osd_architecture/osd_policy/osd-service-definition.adoc#regions-availability-zones_osd-service-definition[Regions and availability zones].
139
133
140
134
* **Policy constraint update.** {product-title} on {GCP} users are now allowed to deploy clusters with the `constraints/iam.allowedPolicyMemberDomains` constraint in place. This feature allows users to restrict the set of identities that are allowed to be used in Identity and Access Management policies, further enhancing overall security for their resources.
141
135
142
136
[id="osd-q4-2023_{context}"]
143
-
=== Q4 2023
137
+
== Q4 2023
144
138
145
139
* **Policy constraint update.** {product-title} on {GCP} users can now enable UEFISecureBoot during cluster installation, as required by the {gcp-short} ShieldVM policy. This new feature adds further protection from boot or kernel-level malware or rootkits.
0 commit comments